Aggregator
Qilin
4 months 2 weeks ago
cohenido
CVE-2018-1207 | Dell EMC iDRAC7/iDRAC8 up to 2.52 injection (EDB-52246 / Nessus ID 109208)
4 months 2 weeks ago
A vulnerability was found in Dell EMC iDRAC7 and iDRAC8 up to 2.52. It has been classified as critical. This affects an unknown part. The manipulation leads to injection.
This vulnerability is uniquely identified as CVE-2018-1207. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Medusa Blog
4 months 2 weeks ago
cohenido
DragonForce
4 months 2 weeks ago
cohenido
DragonForce
4 months 2 weeks ago
cohenido
CVE-1999-0236 | Apache HTTP Server ScriptAlias information disclosure (EDB-20595 / XFDB-332)
4 months 2 weeks ago
A vulnerability, which was classified as critical, has been found in Apache HTTP Server. Affected by this issue is some unknown functionality of the file ScriptAlias. The manipulation leads to information disclosure.
This vulnerability is handled as CVE-1999-0236. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2019-15119 | cnlh nps up to 0.23.2 Permission lib/install/install.go access control
4 months 2 weeks ago
A vulnerability classified as problematic was found in cnlh nps up to 0.23.2. This vulnerability affects unknown code in the library lib/install/install.go of the component Permission. The manipulation leads to improper access controls.
This vulnerability was named CVE-2019-15119. An attack has to be approached locally. There is no exploit available.
vuldb.com
CVE-2021-26264 | Emerson DeltaV Script missing authentication (icsa-21-355-04)
4 months 2 weeks ago
A vulnerability has been found in Emerson DeltaV and classified as critical. Affected by this vulnerability is an unknown functionality of the component Script Handler. The manipulation leads to missing authentication.
This vulnerability is known as CVE-2021-26264. The attack can only be done within the local network. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2021-44463 | Emerson DeltaV DLL uncontrolled search path (icsa-21-355-04)
4 months 2 weeks ago
A vulnerability was found in Emerson DeltaV and classified as critical. Affected by this issue is some unknown functionality of the component DLL Handler. The manipulation leads to uncontrolled search path.
This vulnerability is handled as CVE-2021-44463. The attack may be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2021-32960 | Rockwell Automation FactoryTalk Services Platform up to 6.11 Policy access control (icsa-21-161-01)
4 months 2 weeks ago
A vulnerability classified as critical has been found in Rockwell Automation FactoryTalk Services Platform up to 6.11. This affects an unknown part of the component Policy Handler. The manipulation leads to improper access controls.
This vulnerability is uniquely identified as CVE-2021-32960. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
CVE-2021-27493 | Philips Vue PACS up to 12.2.x Message Remote Code Execution (icsma-21-187-01)
4 months 2 weeks ago
A vulnerability was found in Philips Vue PACS up to 12.2.x. It has been declared as critical. This vulnerability affects unknown code of the component Message Handler. The manipulation leads to Remote Code Execution.
This vulnerability was named CVE-2021-27493. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2021-27497 | Philips Vue PACS up to 12.2.x protection mechanism (icsma-21-187-01)
4 months 2 weeks ago
A vulnerability was found in Philips Vue PACS up to 12.2.x. It has been rated as critical. This issue affects some unknown processing. The manipulation leads to protection mechanism failure.
The identification of this vulnerability is CVE-2021-27497. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2021-38417 | VISAM VBASE 11.6.0.6 Web-remote Endpoint information disclosure (icsa-21-308-01)
4 months 2 weeks ago
A vulnerability has been found in VISAM VBASE 11.6.0.6 and classified as problematic. This vulnerability affects unknown code of the component Web-remote Endpoint. The manipulation leads to information disclosure.
This vulnerability was named CVE-2021-38417. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2020-6998 | Rockwell Automation CompactLogix 5370/ControlLogix 5570 up to 33 CIP Packet denial of service (icsa-21-061-02)
4 months 2 weeks ago
A vulnerability was found in Rockwell Automation CompactLogix 5370 and ControlLogix 5570 up to 33. It has been classified as problematic. This affects an unknown part of the component CIP Packet Handler. The manipulation leads to denial of service.
This vulnerability is uniquely identified as CVE-2020-6998. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
CVE-2021-38410 | AVEVA Platform Common Services up to 4.4.6/4.5.0/4.5.1/4.5.2 uncontrolled search path (icsa-21-252-01)
4 months 2 weeks ago
A vulnerability was found in AVEVA Platform Common Services up to 4.4.6/4.5.0/4.5.1/4.5.2. It has been declared as critical. This vulnerability affects unknown code. The manipulation leads to uncontrolled search path.
This vulnerability was named CVE-2021-38410. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2021-42535 | VISAM user-controllable up to 11.6.0.5 cross site scripting (icsa-21-308-01)
4 months 2 weeks ago
A vulnerability was found in VISAM user-controllable up to 11.6.0.5. It has been rated as problematic. This issue affects some unknown processing. The manipulation leads to cross site scripting.
The identification of this vulnerability is CVE-2021-42535. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2021-42537 | VISAM VBASE 11.6.0.6 XML Document xml external entity reference (icsa-21-308-01)
4 months 2 weeks ago
A vulnerability classified as problematic has been found in VISAM VBASE 11.6.0.6. Affected is an unknown function of the component XML Document Handler. The manipulation leads to xml external entity reference.
This vulnerability is traded as CVE-2021-42537. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2021-22640 | Ovarro TBox TG2 insufficiently protected credentials (icsa-21-054-04)
4 months 2 weeks ago
A vulnerability was found in Ovarro TBoxLT2, TBox MS-CPU32, TBox MS-CPU32-S2, TBox RM2 and TBox TG2. It has been classified as problematic. This affects an unknown part. The manipulation leads to insufficiently protected credentials.
This vulnerability is uniquely identified as CVE-2021-22640. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Sarcoma
4 months 2 weeks ago
cohenido